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DETAILED ACTION 



Claim Rejections - 35 USC §102 

1. The following is a quotation of the appropriate paragraphs of 35 U.S.C. 102 that form the 
basis for the rejections under this section made in this Office action: 

A person shall be entitled to a patent unless - 

(a) the invention was known or used by others in this country, or patented or described in a printed publication in this 
or a foreign country, before the invention thereof by the applicant for a patent. 

2. Claims 1-4, 7, 8, 10, 13-16, 19, 20, 22, 24-30, 33, 34 and 37-39 are rejected under 35 
U.S.C. 102(a) as being anticipated by WO 00/78004 A2 to Iyer et al. 

As concerns claims 1 and 15, identifying one or more policies associated with a network 
component (|ii|ines :i||ii); generating a list of one or more groups to which the network 
component belongs (|>, 3,.Ktt^ 17^ and identifying one or more poUcies associated with 

each of the groups in the generated list (pBrlill^^^B BJie:;9); in which identifying one or more 
poHcies associated with the network component comprises: searching an entry associated with the 
network component in an aggregated data set to identify one or more pointers (inlie^enf ;tf5[;l^^ 
poitvtfei^^^^^ to iit^mdi^^^^ to a deployment policy tree (pPlJinB 29^ 

Jines 1 It:!!^^^ and based on the identified one or more pointers, searching the deployment policy tree 
to identify one or more policies directly associated with the network component 

in which generating the list of one or more groups to which the network 
component belongs comprises: searching an entry associated with the network component in an 
aggregated data set to identify a pointer (iriheie^^^^ 

4a|^bases) to a network configuration tree; and based on the identified pointer, searching the 
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configuration tree to identify a parent node corresponding to a group to which the network 
component belongs (i>i 3;^ linel liili^-^^^ 

As concerns claims 2, 16 and 26, in which the network component comprises one or more 
of the following: a network device, a device group, a device subgroup, a user, a group of users, an 
application, a group of apphcations, an end-host, a group of end-hosts, and one or more time 
conditions (p, . 

As concerns claim 3, the method of claim 2 in which at least one of the identified policies 
associated with the network component is currently deployed (i^i^iij^^ 

As concems claim 4, the method of claim 2 in which at least one of the identified poUcies 
associated with the network component is currently undeployed (cortdii 

As concerns claim 27, in which identifying one or more policies associated with the 
network component comprises: searching an entry associated with the network component in an 
aggregated data set to identify one or more pointers (iniieren| to h^Ve .points for Access fp rnerBOf^r 
iQcatiQns p^ to a deployment policy tree (j^^^^ linfe. 29; |>J 8^^^^^^ and based on the 

identified one or more pointers, searching the deployment policy tree to identify one or more 
poUcies directly associated with the network component |^;^3|;l!^^ 

As concern claim 28, in which generating the list of one or more groups to which the 
network component belongs comprises: searching an entry associated with the network component 
in an aggregated data set to identify a pointer (inherepf to haye^ippi^^ access to iijempry 
jp^ipttidN to a network configuration tree^ and based on the identified pointer, 

searching the configuration tree to identify a parent node corresponding to a group to which the 
network component belongs (p^^ 3/ line 2^*^ ^J^jlmes; 1;*^^ 
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As concerns claims 7, 19, 29 and 37, further comprising recursively searching the 
aggregated data set (list jn^d^^^ and the configuration tree until a non-group 

node is encountered in the configuration tree (p:;^^j::;yH^^^ 

$0ardiirig d^<^ai$j^^^ th^yjpp ii^ar^iiig Qirily; 

the first database mformaiion). 

As concerns claims 8 and 20, in which the recursive searching generates a group chain 
list (#tab2^^ 

As concerns claim 30, in which identifying one or more policies associated with each of 
the groups in the generated list comprises, for each group in the list: searching an entry associated 
with the group in an aggregated data set to identify one or more pointers (inherenife^ 
K^^^ to a deployment policy tree; and based on the 

identified one or more pointers, searching the deployment policy tree to identify one or more 
policies directly associated with the group (p74,;:;iitie|3^^^ 

As concerns claims 10 and 22, in which one or more of the operations is performed at 
least in part using an aggregated data set (p:jj|i^4inf Si^^^ 

As concerns claims 13 and 24, in which the aggregated data set comprises a plurality of 
entries (pMaHty of data elemenb in H^^^ Ijip^,;;!^^^^^ each entry 

corresponding to a network component and including a network component identifier j|pi;;:;#i;li^ 
;i4), one or more pointers (jiihein^ ppiii|eb^^ to 

a deployment policy tree, and a pointer (iMferen||o^ iri^^ 
diatabas€ss) to a network configuration tree (|i;^p;S|i||ite^^^^^ 
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As concerns claim 14, the method of claim 1 in which providing a capability to perform 
operations on a computer system comprises providing at a network management policy decision 
point a policy based network management software application capable of performing the operations 

As concerns claim 25, a policy based network management (PBNM) system comprising: 
a network configuration tree configured to store a tree representation of a network configuration 
(i6gur€s; i%^ the tree representation being formed of a plurality of nodes, each node 
corresponding to a network component (p^^^i, Hite 29^^^^^^^ a deployed policy tree 

configured to store a tree representation of policies associated with network components (p|2^.i[m^ 
Sli>-Rr::® an aggregated data set configured to store a plurality of data elements 

inchiding one or more identity elements (piOT^jii;^^ 
lifihS?. 3:17-311), one or more pointers (liijliesi^^ to;i|i||tJp% fi^liili;^^^^^^ 
databases^ to the deployed policy tree, and one or more pointers (ilfc^iten^ 
Jj5j:d0|en^^ to the network configuration tree, each identity element 

identifying a network component and having an associated network configuration tree pointer 
(ihhei^5|- ti^^^^ and one or more associated 

deployed policy tree pointers (jyii;h|i;^^ of 
'^^imps)^ and one or more software components (pi;^J:;lJftfi^^^^ configured to 

identify one or more policies associated with a network component; generate a list of one or more 
groups to which the network component belongs (|:^|::3, and identify one or more 
policies associated with each of the groups in the generated list (p^3^^^^^ 
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As concerns claim 33, a method comprising providing a capability to perform operations 
on a computer system, the operations comprising: receiving a request (6p2) to identify one or more 
pohcies associated with a specified subject; identifying one or more policies directly associated with 
the specified subject (p..7;. Une^ generating a list of one or more groups to which the 

specified subject belongs (p, 3, litte;!?^^ and identifying one or more policies associated 

with each of the groups in the generated list (jp^ ^^^^M^ii^ 

As concems claim 34, the method of claim 33 in which the specified subject comprises one 
or more of the following: a network device, a device group, a device subgroup, a user, a group of 
users, an apphcation, a group of apphcations, an end host, a group of end-hosts, and one or more time 
conditions 

As concems claim 39, the method of claim 33 in which providing a capability to perform 
operations on a computer system comprises providing at a network management policy decision 
point a policy based network management software application capable of performing the operations 
]itvds^i;p,3c, lme|8). 

Claim Rejections - 35 USC § 103 

3. The following is a quotation of 35 U.S.C. 103(a) which forms the basis for all 
obviousness rejections set forth in this Office action: 

(a) A patent may not be obtained though the invention is not identically disclosed or described as set forth in 
section 102 of this title, if the differences between the subject matter sought to be patented and the prior art are 
such that the subject matter as a whole would have been obvious at the time the invention was made to a person 
having ordinary skill in the art to which said subject matter pertains. Patentability shall not be negatived by the 
manner in which the invention was made. 

4. Claim 23 is rejected under 35 U.S.C. 103(a) as being unpatentable over WO 00/78004 A2 
to Iyer et al. as applied above in view of U.S. Patent No. 6,7785534 to Tal et al. 
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Iyer et al. do not explicitly disclose the aggregated data set comprises a hash table or a 
red-black tree. 

Tal et al. '534 disclose a hash table for storing and organizing different data types 

It would have been obvious to one having ordinary skill in the art at the time the 
invention was made to provide the system of Iyer et al. with a hash table, as taught by Tal et al 
'534, in order to store different types of data in an organized fashion. 

Response to Arguments 
5. AppHcant's arguments filed July 20, 2005 have been fully considered but they are not 
persuasive. 

The applicant argues Iyer does not disclose a hierarchical arrangement to generate a list 
of groups for a network node. Iyer at page 4, line 6 discloses, "providing a hierarchical 
organization of the group" and at page 3, Une 36-page 4, line 2 discloses a list of groups. 

The applicant argues Iyer does not disclose an aggregated data set that includes an entry 
associated with the network component, with such entry identifying pointers to the deployment policy 
tree and the configuration tree that reduces or an aggregated data set that includes one or more identity 
elements that identify a network component and has associated network configuration tree pointer and 
one or more associated deployed policy tree pointers. It appears the applicant is referring to the 
limitations found in former claims 5 and 6, now incorporated into claim 1, wherein Iyer discloses in 
which identifying one or more policies associated with the network component comprises: searching 
an entry associated with the network component in an aggregated data set to identify one or more 
pointers (iji(ierei|t;;i^^^^ Ibi^i acoess tp^memqi^^ of sMbi^ to a deployment 
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policy tree (p^ 2, line 2^;;:p, %.lmeS. ;1 1'-^^^^^^^ and based on the identified one or more pointers, 
searching the deployment policy tree to identify one or more policies directly associated with the 
network component (py '^ tiis^ in which generating the list of one or 

more groups to which the network component belongs comprises: searching an entry associated with 
the network component in an aggregated data set to identify a pointer (mfi 
abeess to nlemor:^ locatiotisrpf to a network configuration tree; and based on the 

identified pointer, searching the configuration tree to identify a parent node corresponding to a 
group to which the network component belongs (js^iil-^f K tiiiiieii' 

Conclusion 

6. Applicant's amendment necessitated the new ground(s) of rejection presented in this 
Office action. Accordingly, THIS ACTION IS MADE FINAL. See MPEP § 706.07(a). 
Applicant is reminded of the extension of time policy as set forth in 37 CFR 1. 136(a). 

A shortened statutory period for reply to this final action is set to expire THREE 
MONTHS from the mailing date of this action. In the event a first reply is filed within TWO 
MONTHS of the mailing date of this final action and the advisory action is not mailed until after 
the end of the THREE-MONTH shortened statutory period, then the shortened statutory period 
will expire on the date the advisory action is mailed, and any extension fee pursuant to 37 
CFR 1 . 1 36(a) will be calculated from the mailing date of the advisory action. In no event, 
however, will the statutory period for reply expire later than SIX MONTHS from the date of this 
final action. 
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7. Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to John B. Walsh whose telephone number is 571-272-7063. The 
examiner can normally be reached on Monday-Thursday from 6:30-5:00. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Zami Maung can be reached on 571-272-3939. The fax phone number for the 
organization where this application or proceeding is assigned is 703-872-9306. 

Information regarding the status of an application may be obtained from the Patent 
Application Information Retrieval (PAIR) system. Status information for published applications 
may be obtained from either Private PAIR or Public PAIR. Status information for unpublished 
applications is available through Private PAIR only. For more information about the PAIR 
system, see http://pair-direct.uspto.gov. Should you have questions on access to the Private PAIR 
system, contact the Electronic Business Center (EBC) at 866-217-9197 (toll-free). 




%hn B. Walsh 
Primary Examiner 
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